> Incidentally, Iíve been begging industry colleagues for access to their code and bug records so I can get an MS student to replicate the Boogerd study on a safety-critical C code base. So far no takers. And here I am thinking it would be nice to have more solid evidence about what works and what doesnít.

Those involved in Coccinelle spend their time making
it better and providing great support (rather than
gong around singing its praises). It it far and away
the best tool of its kind out there:
http://coccinelle.lip6.fr/